

One Identity Manager and ForgeRock both compete in the identity and access management category, offering enterprise-level solutions. It appears that One Identity Manager may have the upper hand in automation and deep customization needs, but ForgeRock stands out for its flexible authentication flows and modern protocol support.
Features: One Identity Manager provides role-based access control, user lifecycle management, and strong compliance capabilities. It is particularly noted for its extensive customization and workflow automation features that cater to complex enterprise needs. ForgeRock offers robust features for authentication and authorization, emphasizing flexible authentication flows and risk-based authentication. It is well-regarded for its support of modern protocols like OAuth 2.0 and SAML, alongside its comprehensive API integration for user management.
Room for Improvement: One Identity Manager could improve database performance, simplify its user interface, and ease customization and reporting complexities. Enhancing support documentation and integrating AI-driven improvements are also areas for growth. ForgeRock faces challenges with platform complexity, resulting in a steep learning curve, necessitating better scalability, user interface improvements, and performance optimization for large-scale deployments.
Ease of Deployment and Customer Service: One Identity Manager is mostly used in on-premises environments with complex setups, offering responsive customer support that may vary with case complexity. ForgeRock supports both on-premises and cloud deployments, providing flexible deployment models, although the configuration demands a significant learning curve. Customer service feedback is generally reliable, but improvement in response times for complex issues is needed.
Pricing and ROI: One Identity Manager's pricing is justified by its features with a cost-efficient licensing model, despite high initial setup costs due to complexity. Significant ROI is seen through automation, reducing manual tasks, and faster onboarding. ForgeRock offers competitive and flexible pricing with community and enterprise versions. It is valued for improving operational efficiency, providing ROI through streamlined identity processes and adaptive workflow integration ease.
On a B2B level, it opened up the market for TomTom to sell its services in a more efficient way to car companies.
We can use a Linux image from ForgeRock with different systems, applications, websites, and mobile apps to create various types of access for users.
I can definitely see that fewer employees are needed compared to using different SaaS applications.
Without it, we would need thousands of additional people.
Instead of spending on various systems, having one centralized system that handles all my organizational requirements helps save money.
Several users reported reduced onboarding and offboarding times by around 40% thanks to automated provisioning and de-provisioning.
The support portals offer comprehensive documentation, troubleshooting guides, and community forums that have been helpful for resolving common issues independently.
For standard support tickets, response times were very decent, and the support team was helpful in identifying configuration issues, especially with authentication trees, token settings, and directory replications.
The team is very responsive and takes a sense of ownership and accountability.
If you have outages or critical production problems, you can count on the manufacturer to help resolve the situation.
They should focus on bringing in technically skilled individuals who understand the tools and technologies involved.
Compared to my experiences with other tools, their support is exemplary.
The access management layer is stateless, so I can scale horizontally by adding more nodes behind a load balancer as traffic increases.
The platform provides flexible authentication trees, enabling us to design custom MFA flows tailored for different user groups and risk profiles.
We scaled up with ForgeRock. My team received an award for implementing it for a 60 million customer base, which was the largest implementation at that time.
It is architected so that key components can be scaled both horizontally and vertically to handle increasing loads from employee accounts to millions of external identities if needed.
Generally, if we need to add thousands of new users, we can ramp up container resources effectively.
It is highly scalable and capable of keeping up with the organization's growth needs, especially in the enterprise environment.
ForgeRock supports integration with legacy systems in our organization by offering a wide range of connectors and APIs.
ForgeRock is very stable because it manages access, authentication, and authorization effectively.
One Identity Manager is considered stable and dependable for enterprise identity management with a strong track record of uptime and reliability when implemented correctly.
It is widely seen as stable in production once properly configured, especially for Active Directory automation, user provisioning, de-provisioning, and role-based delegation.
It has a strong core architecture, a reliable user lifecycle management engine, a strong workflow engine, and stable integrations with Active Directory, SAP, HR systems, and enterprise applications.
ForgeRock needs to focus on low-code, no-code solutions that allow for drag-and-drop functionality with good orchestration.
It would be better if they were available for support whenever the customer needs it, especially during migration or go-live time periods.
The main area is complexity. ForgeRock is extremely flexible, but the learning curve can be steep.
This lack of 24-hour support is problematic from a testing and development standpoint.
It is crucial for them to expand their support team to match their product's success.
When it comes to privileged access management, we need to know who has access to what, which is the central problem we want to solve.
One has to spend considerable time trying to understand the different modules and different needs for those modules on the licensing front.
On-premises might incur higher costs.
We have a good enterprise license agreement, and we are very happy with what we get for the price we pay for it.
Many customers find it fair and reasonable for enterprise use, though it can be expensive for smaller organizations due to total licensing and implementation cost.
Centralized management makes the biggest difference because it allows us to define, update, and enforce security and compliance rules from a single location.
ForgeRock positively impacts our organization as we manage a large number of users with ease, providing a standard IAM solution that simplifies our processes.
ForgeRock has positively impacted my organization by allowing us to migrate from the older system to the newer ForgeRock component, enabling us to go live with many products across geographies, enhancing security as it is all cloud-based, and with the company taking care of availability, it has reduced costs for the company.
It ensures high security through multiple approval processes, preventing unauthorized access and enhancing compliance by providing time-based access for privileged accounts with proper audit trails.
It continuously monitors user behavior in real-time, triggering automated responses, and manages secure access for both on-premises and cloud applications using protocols such as SAML.
Once you have some experience, it demonstrates best practices and guides you on the correct way to use the tool.
| Product | Mindshare (%) |
|---|---|
| One Identity Manager | 4.2% |
| ForgeRock | 2.8% |
| Other | 93.0% |

| Company Size | Count |
|---|---|
| Small Business | 15 |
| Midsize Enterprise | 5 |
| Large Enterprise | 18 |
| Company Size | Count |
|---|---|
| Small Business | 112 |
| Midsize Enterprise | 34 |
| Large Enterprise | 124 |
ForgeRock offers robust integration, customization, and identity management with support for SAML, OAuth 2.0, and DevOps readiness, ensuring enhanced security and scalability.
ForgeRock stands out in identity and access management featuring flexible authentication flows, risk-based authentication, centralized policy management, and comprehensive data protection. Its open-source foundation and cloud capabilities allow versatility and ease of use. While it provides excellent user path orchestration through the Journey feature, challenges exist in integration support and user-friendly customization. Improved documentation and streamlined interfaces are necessary to overcome deployment complexities. Additionally, the cost and support model may be burdensome for smaller organizations.
What are the key features?ForgeRock is widely utilized in industries like telecommunications, insurance, and open banking for secure user authentication and access management. It supports microservice authentications, customer identity management, single sign-on, and multi-factor authentication, integrating effectively with existing infrastructures to enhance security and user experience.
One Identity Manager offers centralized identity management with strong audit and compliance support, lifecycle automation, and streamlined access provisioning. It integrates with systems like SAP, Active Directory, and cloud platforms to enhance security and efficiency.
One Identity Manager provides extensive customization and flexible role-based access control, making it an effective tool for managing identities across different environments. Its centralized system supports lifecycle automation and offers seamless integration with multiple platforms, such as SAP and Active Directory. With robust audit and compliance tools, it helps organizations improve security and operational efficiency. Although there is room for improvement in database performance and user interface design, its current features offer substantial time savings and error reduction through effective automation and governance capabilities.
What are the standout features?One Identity Manager is widely implemented across industries like finance, healthcare, and manufacturing. In finance, it ensures compliance with stringent regulations by automating user access audits and approval workflows. Healthcare organizations use it to manage access in complex environments, ensuring patient data confidentiality. Manufacturing industries benefit from its integration capabilities, enabling seamless workflows across multiple systems and enhancing productivity.
We monitor all Identity Management (IM) reviews to prevent fraudulent reviews and keep review quality high. We do not post reviews by company employees or direct competitors. We validate each review for authenticity via cross-reference with LinkedIn, and personal follow-up with the reviewer when necessary.